Google Chrome Vulnerabilities (CVSS 8.8)
Summary
CERT-Bund has issued a security advisory for Google Chrome, detailing multiple vulnerabilities with a CVSS Base Score of 8.8. These vulnerabilities could allow remote attackers to execute code, bypass security measures, cause denial-of-service, or manipulate data. Affected versions include Google Chrome prior to 146.0.7680.153 and 146.0.7680.154 on Linux, MacOS X, and Windows.
What changed
CERT-Bund has published a security advisory (WID-SEC-2026-0808) concerning critical vulnerabilities in Google Chrome. The advisory highlights multiple flaws with a high CVSS Base Score of 8.8, indicating a significant security risk. These vulnerabilities can be exploited by remote attackers to perform various malicious actions, including arbitrary code execution, security bypass, denial-of-service attacks, information disclosure, and data manipulation. The affected products are Google Chrome versions prior to 146.0.7680.153 and 146.0.7680.154, impacting users on Linux, MacOS X, and Windows operating systems.
Organizations and individuals using affected versions of Google Chrome should immediately update their browsers to the latest available version to mitigate these risks. Failure to update may expose systems to severe security breaches, including unauthorized access and data compromise. While no specific compliance deadline is mentioned, prompt patching is essential for maintaining system integrity and protecting sensitive information. This advisory serves as a critical alert for IT security teams to prioritize the update process across their managed devices.
What to do next
- Update Google Chrome to the latest version
- Review security logs for signs of exploitation
Source document (simplified)
[WID-SEC-2026-0808] Google Chrome: Mehrere Schwachstellen CVSS Base Score 8.8 (hoch) CVSS Temporal Score 7.7 (hoch) Remoteangriff ja Datum 19.03.2026 Stand 20.03.2026 Mitigation ja
Betroffene Systeme
Betriebssystem
- Linux
- MacOS X
- Windows
Produktbeschreibung
Chrome ist ein Internet-Browser von Google.
Produkte
19.03.2026
- Google Chrome <146.0.7680.153
- Google Chrome <146.0.7680.154
Angriff
Angriff
Ein Angreifer kann mehrere Schwachstellen in Google Chrome ausnutzen, um nicht näher definierte Angriffe durchzuführen, darunter möglicherweise Codeausführung, Umgehung von Sicherheitsmaßnahmen, Denial-of-Service, Offenlegung von Informationen und Datenmanipulation. CVE Informationen Versionshistorie Feedback zum Advisory geben
Related changes
Source
Classification
Who this affects
Taxonomy
Browse Categories
Get Data Privacy & Cybersecurity alerts
Weekly digest. AI-summarized, no noise.
Free. Unsubscribe anytime.
Get alerts for this source
We'll email you when CERT-Bund Security Advisories publishes new changes.